CVE-2011-1576: Buffer Overflow

Published Apr 11, 2011
·
Updated

Last updated 24 July 2024

Other sources

net: Fix memory leak/corruption on VLAN GRODROP

The function napireuseskb is only meant to be used for packets merged by GRO. Using it on the VLAN path will lead to memory leaks/corruption. This patch is based on Jay Vosburgh's patch, and it fixes the problem by calling kfreeskb on the VLAN GRODROP path instead of napireuseskb.

The fix for CVE-2011-1478 unveiled this issue. Note, this is not a CVE-2011-1478 regression.

Acknowledgements:

Red Hat would like to thank Ryan Sweat for reporting this issue.

Red Hat

The Generic Receive Offload (GRO) implementation in the Linux kernel 2.6.18 on Red Hat Enterprise Linux 5 and 2.6.32 on Red Hat Enterprise Linux 6, as used in Red Hat Enterprise Virtualization (RHEV) Hypervisor and other products, allows remote attackers to cause a denial of service via crafted VLAN packets that are processed by the napireuseskb function, leading to (1) a memory leak or (2) memory corruption, a different vulnerability than CVE-2011-1478.

Launchpad

Affected Software

7 affected components
debian/linux-2.6
redhat Enterprise Linux=6.0
redhat Enterprise Virtualization Hypervisor
Linux Linux kernel=2.6.18
redhat Enterprise Linux=5
All of the following
Linux Linux kernel=2.6.18
redhat Enterprise Linux=5

Event History

Apr 11, 2011
Data Sourced
via Red Hat·03:07 AM
DescriptionSeverityAffected Software
Aug 31, 2011
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Jan 11, 2024
Data Sourced
via Launchpad·09:56 PM
Description
Sep 15, 2024
Data Sourced
via Ubuntu·10:43 PM
RemedyDescriptionSeverityAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2011-1576?

CVE-2011-1576 has been classified with a moderate severity level due to memory leak and corruption risks.

2

How do I fix CVE-2011-1576?

To fix CVE-2011-1576, update your kernel to the latest patched version provided by your Linux distribution.

3

Which versions are affected by CVE-2011-1576?

CVE-2011-1576 affects Linux Kernel versions 2.6.18 and specific versions of Red Hat Enterprise Linux 5 and 6.0.

4

What is the nature of the vulnerability in CVE-2011-1576?

CVE-2011-1576 involves a memory leak and corruption issue when using the napi_reuse_skb function incorrectly on VLAN paths.

5

Is CVE-2011-1576 applicable to Linux virtual machine environments?

Yes, CVE-2011-1576 can impact systems running Red Hat Enterprise Virtualization Hypervisor that utilize the affected Linux kernels.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203